OpenAI is rotating potentially exposed macOS code-signing certificates after a GitHub Actions workflow executed a malicious ...
Defense systems that shoot projectiles out of the sky have become one of the most important components of warfare, so much so that militaries face a diminishing supply. By Nicholas Kulish Since the ...
Interceptor drones, a popular air defense tool in Ukraine, are becoming a global hot commodity. In just a year or so, these drones have gone from flying at 100 mph to over 220 mph. But drone makers ...
Attackers stole a long-lived npm access token belonging to the lead maintainer of axios, the most popular HTTP client library in JavaScript, and used it to publish two poisoned versions that install a ...
A supply-chain attack affecting Axios, the popular JavaScript library, traced back to DPRK threat activity. (Image: Shutterstock) A supply-chain attack that compromised versions of Axios to distribute ...
Suspected North Korean hackers have bugged a software package that has been used by thousands of US companies in a major supply-chain attack that could take months to recover from, security experts ...
Threat actors have targeted an open source maintainer to hijack one of the most popular npm packages and spread remote access Trojans (RATs). Axios is a JavaScript library downloaded over 100 million ...
A fully self-contained drone manufacturing facility built inside a standard shipping container. (Sensofusion) KYIV, Ukraine — While interceptor drones have become one of the most sought-after ...
The Russo-Ukrainian War has been the first major conflict where the use of drones has been widespread. Some of the most commonly deployed drones by Russian forces are the Iranian-designed Shahed-136 ...
The widely used Axios HTTP client library, a JavaScript component used by developers, was recently hacked to distribute malware via a compromised account. Attackers exploited a hijacked account on npm ...
Update March 31, 2026, 1:28 pm UTC: This article has been updated to add comments from Abdelfattah Ibrahim, senior offensive security engineer at Hacken. Two malicious Axios npm releases have prompted ...
Hackers hijacked the npm account of the Axios package, a JavaScript HTTP client with 100M+ weekly downloads, to deliver remote access trojans to Linux, Windows, and macOS systems. One malicious ...
Some results have been hidden because they may be inaccessible to you
Show inaccessible results